Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“When I try to delete the app, it tells me all data will be lost.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
7a213939a844b1838c7ca2d38005b234b7e25fd271c345a5c5875922d5f325f5
Signature (Ed25519, base64)
97f1EWqFD0kNZtLmi1bHJrzOsFUy6lCrH6TpF20aG4lzCypHYlp7f119SbZx2FMYW1di3MVR0Wbey3NBDIyHBw==
Merkle root
1154a265a990612db5567445e00872656e7ced32aff0b18660887a40a375699b
Merkle path
["7a20817a41765664adf4c9296df1f52927a92c00b96c22a62b6694105b153c0d","c50c57f3ac328f27af4bfc458fbb3c7d1969f2131d780f9ea82fcfc7f04d7d41","ba7b3b0ffe361feaba9fff7ff3902736ce2c545d308f59ee2b9afc2847a4ee50","abb5c6bf9e006bbb87cd8910af8afac7fdd83471f4a9b93c4c184243747cacbb","7a333ebf57eec72581ef57d45519bed3cb38d2f41097f7b458ba2835f5c2f06f","1dd6f0694c913760f9177455090ea42d64718ce8c532c385a2d35356ea85a273","431bc355b81c106a9e8a2544cce74dda7e57ae1bbacd09c44102118db340430b","50057c8facec6a6a749f298f419301b44cccdf787b56ca74f49cc75c4b518d85","b251ef2ec0f61fefebbcd3ad5a3296b18fee3a5eda6e1a66e56aa7966418ad54","0d1969e6e4cce567f0eaa8595446d077eaae4a3aa08195cbb6e68b43c9e68818","8ebdbdcf41f1e4407b6f9b9a7b6613ea706c27b924419cbe62437c7da889a98d","d6c13da94f22b63352c4b340f13b075080f5f5ad05059a0752da681293b32b07","7b43375efa91b25bb70837c8d1e426ce38032262734dff0ff0d3f14b97b752f6","602297dc52019bf7e809df446e2304ee5209e9b092e15c29026ad3b8e527c6fc","8f93c563d7c563da751df1a0efbe13b6ce9bd7032eb6dd0a995c545aff2f5a1d"]
Anchored
2026-08-20
Public log entry
search.sigstore.dev, log index 2524110285 · entry 108e9186e8c5677a87bd…
Expected log hash
34efb4ec1aab60168b83ec62d0334b8e10d9814c0de0cc0d3569d176ff20bc2d The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787152786156","kind":"published-quote","locale":"en","page":"theme:sevdesk/returns/en","quote":"When I try to delete the app, it tells me all data will be lost.","rating":3,"review_date":"2026-03-14","source":"Apple App Store","source_url":"https://apps.apple.com/de/app/id731738076?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (1154a265a990…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.